Title
Cybersecurity Architect
Job Summary
We are seeking an experienced Cybersecurity Architect to join the Portfolio Management Office (PMO). The primary role will be to define the program's cybersecurity strategy, direction, and governance for the Digital Platform ecosystem, Cloud computing environment, and end-to-end networking. The candidate will design a robust and scalable cloud security architecture, platform security architecture, and end-to-end networking security architecture, develop a comprehensive security strategy aligned with business goals, Saudi Cybersecurity regulations, mandates, and applicable standards, and establish a governance framework to guide secure platform ecosystem adoption by all program stakeholders.
Key Responsibilities
As the successful candidate, you will be required to perform the following:
- Develop data governance frameworks, policies including access controls, and security measures for the Digital Platform ecosystem.
- Develop cloud/edge computing governance procedures, policies, and frameworks, addressing roles, responsibilities, access controls, security measures, and compliance across all cloud/edge platforms.
- Design and develop cloud/edge computing security architecture, platform security architecture, and end-to-end network infrastructure security architecture to ensure alignment with security mandates.
- Conduct security assessments and risk analyses for proposed designs and actual environments related to Cloud/Edge computing infrastructure, Platform ecosystem, and network infrastructures.
- Create cybersecurity vendor assessment criteria and work with other architects to conduct market surveys and shortlist vendors.
- Develop cybersecurity strategies, including and not limited to perimeter infrastructure security (IPS, IDS, NGFW, DLP, Anti-virus, NAC, micro-segmentation, DMZ, WAF, RBAC, 2FA, VPN, DDoS, etc.), Endpoint Protection, SIEM, Cloud Workload Protection, Zero Trust, Cloud Security Posture Management, Log Management, Secure Access Service Edge, Cloud Access Security Broker, and Cybersecurity Mesh Architecture.
- Develop incident response plans, metrics, and reporting mechanisms to monitor and evaluate security posture.
- Identify and resolve cybersecurity performance issues, optimize resources, and ensure cybersecurity performance across the platform ecosystem.
Minimum Requirements
- Bachelor's degree in Computer Science, Information Security, or a related field.
- Cloud security certifications such as CISSP, CCSP, Zero Trust, DevSecOps, ICS, or other relevant certifications are required.
- 12+ years in information security, with at least 10+ years in cloud/edge/platform security architecture and strategy.
- Proven experience designing and implementing hyperscaler secure cloud architectures, secure cloud-based platforms, and secure end-to-end network infrastructures in complex environments, particularly in hydrocarbon industries and IIoT ecosystems.
- Experience with at least three leading cloud platforms (AWS, Azure, GCP, OCI, etc.).
- Strong understanding of security frameworks and standards (GRC, NIST, CIS, ICS, ISO 27001, KSAs SANCCSC, ECC by NCA, PDPL, etc.).
- Excellent analytical, problem-solving, communication, and interpersonal skills.
- Ability to produce detailed technical documentation and presentations.
- Ability to work independently and collaboratively across stakeholders.
- Fluent in English and Arabic; additional languages are a plus.